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This listing of claims replaces all prior versions, and 
listings of claims in the instant application: 

Listing of Claims: 

1. (Original) A method for obtaining a service on a data 
communications network, the method comprising: 

enrolling with an authority, said enrolling creating 
enrollment results, said enrollment results comprising 
user data; and 

using said enrollment results to obtain a service 
from a service provider, said service provider capable of 
communicating with said authority to verify said 
enrollment results . 
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2. (Currently Amended) A method for managing 
identification in a data communications network, the method 
comprising : 

generating authenticated user data, said generating 
comprising : 

presenting a request for authenticated user data 
and a first set of user data to an authority; and 

receiving authenticated user data from said 
authority in response to said request; and 
using said authenticated user data to obtain at least 
one service on said data communications network, said 
using comprising: 

presenting a service request— and said 
authenticated user data to a service provider; 
and 

receiving said at least one service in 
response to said service request if said service 
provider determines said authenticated user data 
is sufficient to provide said at least one 
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service wherein said service provider is capable 
of communicating with said authority to verify 
said enrollment results. 



3. (Original) A program storage device readable by a 
machine, embodying a program of instructions executable by the 
machine to perform a method for obtaining a service on a data 
communications network, the method comprising: 

enrolling with an authority, said enrolling creating 

enrollment results, said enrollment results comprising 

user data; and 

using said enrollment results to obtain a service 

from a service provider, said service provider capable of 

communicating with said authority to verify said 

enrollment results . 
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4, (Currently Amended) A program storage device readable 
by a machine, embodying a program of instructions executable by 
the machine to perform a method for managing identification in 
a data communications network, the method comprising: 

generating authenticated user data, said generating 

comprising : 

presenting a request for authenticated user data 
and a first set of user data to an authority; and 

receiving authenticated user data from said 
authority in response to said request; and 
using said authenticated user data to obtain at least 
one service on said data communications network, said 
using comprising: 

presenting a service request— and said 
authenticated user data to a service provider; and 

receiving said at least one service in response 
to said service request if said service provider 
determines said authenticated user data is sufficient 
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to provide said at least one service wherein said 
service provider is capable of communicating with 
said authority to verify said enrollment result . 

5. (Currently Amended) An apparatus for managing 
identification in a data communications network, the apparatus 
comprising : 

means for generating authenticated user data, said 
generating comprising: 

means for presenting a request for authenticated 
user data and a first set of user data to an 
authority; and 

means for receiving authenticated user data from 
said authority in response to said request; and 
means for using said authenticated user data to 
obtain at least one service on said data communications 
network, said means for using comprising: 

means for presenting a service request— and said 
authenticated user data to a service provider; and 

means for receiving said at least one service in 
response to said service request if said service 
provider determines said authenticated user data is 
sufficient to provide said at least one service 
wherein said service provider is capable of 
communicating with said authority to verify said 
enrollment result . 
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6. (Original) An apparatus for managing identification 

in a data communications network, the apparatus comprising: 

means for receiving a user-controlled secure storage 
device; 

means for enrolling said user with an authority, said 

enrolling comprising providing information requested by 
said authority; 
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means for receiving user data in response to said 
enrolling; 

means for storing said user data in said user- 
controlled secure storage device; and 

means for using said user data at a service provider 
Web site to obtain a service. 

7. (Cancelled) 

8. (Original) An apparatus for obtaining a service on a 
data communications network, the apparatus comprising: 

a service provider configured to accept a service 
request and enrollment results obtained from an enrollment 
authority, said service provider capable of communicating 
with said authority to verify said enrollment results, 
said service provider configured to provide said service 
based upon said enrollment results and a response from 
said enrollment authority. 

9. (Cancelled) 

10. (Original) An apparatus for managing identification 
in a data communications network, the apparatus comprising: 

a service provider configured to accept a service 
request, a first set of user data and a second set of user 
data, said first set of user data comprising user data 
authenticated by an authority, said service provider 
further configured to determine whether said first set of 
user data and said second set of user data are sufficient 
to provide said service, said service provider further 
configured to provide said service based upon said 
determination . 
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